🤲🏼 NEW | abuse.ch Community Hub! Earn recognition 🏅 for the malware intelligence you share, climb the leaderboards 📈, and connect with like-minded contributors who share your hunting focus 🤝. Ready to unlock your profile? Go to the Community Hub →

ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 138.2.87.233:31337.

Database Entry


IOC ID:1871266
IOC: 138.2.87.233:31337
IOC Type :ip:port
Threat Type :botnet_cc
Malware: Sliver
Confidence Level : Confidence level is elevated (75%)
Is compromised? : False
ASN:AS31898 ORACLE-BMC-31898
Country:- US
First seen:2026-08-09 09:43:33 UTC
Last seen:2026-09-12 04:43:35 UTC
UUID:c945bd7e-93d6-11f1-8a3d-42010aa4000a
Reporter abuse_ch
Reward 5 credits from ThreatFox
Tags:drb-ra sliver

Avatar
abuse_ch
Possible win.sliver botnet C2 server